İçeriğe atla
Noroxi

bose kayıtları

bose üreticisine ait 5 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

  1. 17
  2. 18
  3. 19

Çubuk: toplam · koyu kısım: CISA KEV.

Tekrar eden sınıflar

Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

CWE

Bug bounty kapsamı

Ürünün üreticisi herkese açık bir programda görünüyor. Eşleşme ad üzerinden yapıldı; kapsam metnini programda doğrulayın.

Tüm kayıtlar

5 kayıt
  • CVE-2017-6520
    37İzleyin

    The Multicast DNS (mDNS) responder used in BOSE Soundtouch 30 inadvertently responds to IPv4 unicast queries with source addresses that are

    KritikCVSS 9,1İstismar yokEPSS %2

    bose · soundtouch 3030 Nis 2017

  • CVE-2017-17751
    35İzleyin

    Bose SoundTouch devices allows remote attackers to achieve remote control via a crafted web site that uses the WebSocket Protocol.

    YüksekCVSS 8,8İstismar yokEPSS %1

    bose · soundtouch24 Mar 2018

  • CVE-2018-12638
    24İzleyin

    An issue was discovered in the Bose Soundtouch app 18.1.4 for iOS.

    OrtaCVSS 6,1İstismar yokEPSS %1

    bose · soundtouch21 Mar 2019

  • CVE-2017-17749
    21İzleyin

    Bose SoundTouch devices allow XSS via crafted song data from a music service, as demonstrated by Pandora.

    OrtaCVSS 5,4İstismar yokEPSS %1

    bose · soundtouch24 Mar 2018

  • CVE-2017-17750
    21İzleyin

    Bose SoundTouch devices allow XSS via a crafted public playlist from Spotify.

    OrtaCVSS 5,4İstismar yokEPSS %1

    bose · soundtouch24 Mar 2018